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caaims 1-24 are pending in the present application. Claims 1, 6. 9, 14, 17 and 22 have 
been amended herewith. Reconsideration of the claims is respectfully requested. 

I. 35 U>S,C, i 103. Obvioumcss 

The Exanoiner rejected Claims 1-24 under 35 U.S.C. § 103 as bemg unpatentoble over 
Saviil (Where can I find a Unix su like utility?) and in view of Wu (U.S. Patent Number 
5,774.55 ly hereinafter referred to as Wu. This rejection is respectfully traversed. 

With respect to Claim 1. it is urged that none of the cited references teach or suggest the 
claixned feature of "generatiog a second security context in response to a second user 
authentication, wherein said second security context is an aggregate of said first security context 
and a security context conesponding to an identity in said second user authratication". As can 
be seen, an item is generating (a second security context), and this generated item is an aggregate 
of two items (the first security context that was generated, and the security context that 
corresponds to an identity in the second user authentication). In rejecting Claim 1, the Bxaminer 
cites Savill as teaching the two security contexts, and cites Wu as teaching segregating these two 
security contexts. Applicants urge that this is enor, as if Savill is being relied upon as teaching 
the two security contexts, it is not possible for Wu to teach aggregating these security contexts as 
it doesn't teach such security contexts (which are instead alleged to be taught by Savill). 

Still further with respect to Claim 1, the Wu passive dted by the Examiner as teaching 
the clahned aggregation describes stacking of multiple account management sendees (col. 6, 
lines 63-65; col, 8, lines 17^21), these services being described to be such things as system entry 
services, authentication services, account services, password services, and session services (col. 
5, lines 7-U). Each of these s^yices provides particular functionality in managing user accounts 
(ool. 5, lines 12-14). This staddng of services that can be invoked is not related to aggregating 
security contexts that arc generated in response to user authentication, as they pertain to the 
actual authenticoHon service that is to be invoked . Quite struplyt Claim 1 is directed to 
aggregating things that are generated in response to user authentications, whereas Wu*s stacking 
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is with respect to how to call the authentication process itself Tlius, it is further urged that 
Claim 1 has been erroneously rejected, due to the above described missing claimed featu^es^ 

It is further shown that Wu'g authentication services can not be equated with the claimed 
security contexts, as the security contexts are generated in response to authentication . Wu's 
authentication services^ stacked or otherwise, are not generated in response to a user 
authentication, but rather are pre-existiptg services (Figure 1» elements 109). It is thus urged that 
the Examiner is erroneously equatii^ the authentication advices as taught by Wu with the 
claimed security contexts, as the claimed security contexts are generated in response to a user 
authentication, and therefore they caimot be the authentication itself. Thus, Claim 1 is further 
shown to have been erroneously rejected. 

The claimed second security context - whidi is generated by aggregating (1) the first 
security context, and (2) a security context corresponding to an identity in said second user 
authentication - advantageously provides for fmer granularity in access authorization structures 
without exacerbating the complicationa associated with multiple user logins. This is achievable 
as authenticated identities are aggregated* A security context is generated in response to a first 
user authentication. A second security context is generated based on an identity in a second user 
authentication^ and this second security context is an aggregated security context generated as an 
aggregation of both the fu:st security context and the seciuity context corresponding to this 
second user authentication identity. The aggregation of security contexts advantageously 
provides the finer granularity in access authorization structures (Specification page 14). 

Applicants initially traverse the rejection of Claims 2-8 for reasons given above with 
respect to Claim 1 (of which Claims 2-8 depend upon). 

Further with respect to Claim 3, it is urged that since Wu doesn't teach the claimed 
seouity context (since Savill is being relied upon for teaching the claimed security context), it 
necessarily follows that Wu cannot teach pushing such missing security context on a stack to 
save it. The passage cited by the Examiner in rejecting Claim 3 (Col, 6, lines 64-67 and CoL 7, 
lines 1-4) makes no mention of any stack, and makes no mention of any type of pushing 

^ To establish prima fade obviousness of a claimed invention, bU of the claim limitations must be taught or 
suggested by the prior art. MPEP 2143.03. ^//>irt!/?(?>*fl, 490 R2d 580 CC.CPJ^ 1974) (emphasis added 
by Applicants). If the examiner foils to establish a prima facie case, the rejection is improper and vnli be overturned. 
Fn re Fine. 837 K2d 1071, 1074, 5 USPQ2d 1596, 1598 (Fed Cir. 1988). 
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operation with respect to such (missing) stack. It is thus further shoivn that Claim 3 has been 
erroneously rejected, as there are missing claimed features not taught or suggested by the cited 
references. 

Further with respect to Claim 6, such claim recites a step of "reverting to said first 
security context in response to a user logofT". The Wu reference, which is cited by the Examiner 
in rejecting Claim 6, is keen on providing a single user login and a single user logout, such that a 
user need only remember or provide a single authentication token even thoug;h multiple 
authentication services are supported (coL 3, line 66 - coL 4, line 24). Importantly, all of the 
user's credentials are removed during a single logout process (col. 4, lines 3-7). Thus, Wu does 
not teach any type of reversion to a first security context in response to a user logout, as all user 
credentials are removed/destroyed in response to a user logout. Thus» Claim 6 is further shown 
to have been enoneously rejected, as there are additional claimed features not taught or suggested 
by the cited references. 

Applicants traverse the rejection of Claims 9-24 for similar reasons to those given above 
with respect to Claim 1. 

Applicants further traverse the rejection of Claims 11 and 19 for similar reasons to the 
further reasons givrai above with respect to Claim 3. 

Applicants further travexse the rejection of Claims 14 (and depeculent Claim 15) and 22 
(and dependent Claim 23) for similar reasons to the further reasons given above with respect to 
Claim 6, 

Therefore, the rejection of Claims 1-24 under 35 U.5.C. § 103 has been overcome* 
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n. Conclusion 

It b respectfully urged that the subject application is patentable over the cited references 
and is now in condition for allowance. The Examiner is invited to call the undersigned at the 
below-listed telephone number if in the opinion of the Examiner such a telcptone conference 
would expedite or aid the prosecution and examination of this application. 



DATE: October 20, 2005 

Respectfully submitted, 



DukeW. Yee 
Reg. No. 34^5 
Wayne P. Bailey 
Reg. No. 34^5 
Yee & Associates, P.C. 
P.O. Box 802333 
Dallas, TX 7S380 
(972)385-8777 
Attorneys for ApplicaDts 
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